AI tools help hacker break in for $25 per target
AI-driven campaign compromised 27 of 105 retailers and stole about 600,000 card numbers.
Israeli security firm Gambit reports that an attacker used open-source AI harnesses to hit 105 online retailers over five days and compromise 27. From two businesses the attacker took about 600,000 active credit card details, and card-skimmer scripts were installed at five more, with additional access to unnamed major companies. Gambit identifies Strix for vulnerability search, Cairn for autonomous exploitation, and Hermes for campaign orchestration, with model access via OpenRouter. An August 25 balance showed $7,005 spent over four weeks, about $25 per target, ranging from $3.13 to $79.31.